VYPR

Nas Proxy Server

by Qnap

CVEs (7)

  • CVE-2017-7637CriJun 5, 2018
    risk 0.64cvss 9.8epss 0.03

    QNAP NAS application Proxy Server through version 1.2.0 allows remote attackers to run arbitrary OS commands against the system with root privileges.

  • CVE-2017-7635HigJun 5, 2018
    risk 0.57cvss 8.8epss 0.01

    QNAP NAS application Proxy Server through version 1.2.0 does not utilize CSRF protections.

  • CVE-2021-34359MedFeb 25, 2022
    risk 0.45cvss 6.9epss 0.01

    A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of Proxy Server: QTS…

  • CVE-2017-7636MedJun 5, 2018
    risk 0.40cvss 6.1epss 0.01

    Cross-site scripting (XSS) vulnerability in QNAP NAS application Proxy Server through version 1.2.0 allows remote attackers to inject arbitrary web script or HTML.

  • CVE-2021-34361MedFeb 25, 2022
    risk 0.35cvss 5.3epss 0.01

    A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of Proxy Server: QTS…

  • CVE-2017-7639MedJun 5, 2018
    risk 0.35cvss 5.3epss 0.01

    QNAP NAS application Proxy Server through version 1.2.0 does not authenticate requests properly. Successful exploitation can lead to change of the settings of Proxy Server.

  • CVE-2021-34360MedMay 26, 2022
    risk 0.34cvss 5.3epss 0.00

    A cross-site request forgery (CSRF) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of Proxy Server:…